James Moger
2011-05-12 a098da747052eb8d9f612f78dece8ac027a72caa
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
package com.gitblit.wicket.pages;
 
import java.text.MessageFormat;
import java.util.ArrayList;
import java.util.Iterator;
import java.util.List;
 
import org.apache.wicket.PageParameters;
import org.apache.wicket.extensions.markup.html.form.palette.Palette;
import org.apache.wicket.markup.html.form.CheckBox;
import org.apache.wicket.markup.html.form.ChoiceRenderer;
import org.apache.wicket.markup.html.form.Form;
import org.apache.wicket.markup.html.form.PasswordTextField;
import org.apache.wicket.markup.html.form.TextField;
import org.apache.wicket.model.CompoundPropertyModel;
import org.apache.wicket.model.Model;
import org.apache.wicket.model.util.CollectionModel;
import org.apache.wicket.model.util.ListModel;
import org.eclipse.jetty.http.security.Credential.Crypt;
import org.eclipse.jetty.http.security.Credential.MD5;
 
import com.gitblit.Constants.AccessRestrictionType;
import com.gitblit.GitBlit;
import com.gitblit.GitBlitException;
import com.gitblit.Keys;
import com.gitblit.utils.StringUtils;
import com.gitblit.wicket.AdminPage;
import com.gitblit.wicket.BasePage;
import com.gitblit.wicket.WicketUtils;
import com.gitblit.wicket.models.RepositoryModel;
import com.gitblit.wicket.models.UserModel;
 
@AdminPage
public class EditUserPage extends BasePage {
 
    private final boolean isCreate;
 
    public EditUserPage() {
        // create constructor
        super();
        isCreate = true;
        setupPage(new UserModel(""));
    }
 
    public EditUserPage(PageParameters params) {
        // edit constructor
        super(params);
        isCreate = false;
        String name = WicketUtils.getUsername(params);
        UserModel model = GitBlit.self().getUserModel(name);
        setupPage(model);
    }
 
    protected void setupPage(final UserModel userModel) {
        if (isCreate) {
            super.setupPage("", getString("gb.newUser"));
        } else {
            super.setupPage("", getString("gb.edit"));
        }
        final Model<String> confirmPassword = new Model<String>(StringUtils.isEmpty(userModel.getPassword()) ? "" : userModel.getPassword());
        CompoundPropertyModel<UserModel> model = new CompoundPropertyModel<UserModel>(userModel);
 
        List<String> repos = new ArrayList<String>();
        for (String repo : GitBlit.self().getRepositoryList()) {
            RepositoryModel repositoryModel = GitBlit.self().getRepositoryModel(repo);
            if (repositoryModel.accessRestriction.exceeds(AccessRestrictionType.NONE)) {
                repos.add(repo);
            }
        }
        final Palette<String> repositories = new Palette<String>("repositories", new ListModel<String>(userModel.getRepositories()), new CollectionModel<String>(repos), new ChoiceRenderer<String>("", ""), 10, false);
        Form<UserModel> form = new Form<UserModel>("editForm", model) {
 
            private static final long serialVersionUID = 1L;
 
            /*
             * (non-Javadoc)
             * 
             * @see org.apache.wicket.markup.html.form.Form#onSubmit()
             */
            @Override
            protected void onSubmit() {
                String username = userModel.getUsername();
                if (StringUtils.isEmpty(username)) {
                    error("Please enter a username!");
                    return;
                }
                if (isCreate) {
                    UserModel model = GitBlit.self().getUserModel(username);
                    if (model != null) {
                        error(MessageFormat.format("Username {0} is unavailable.", username));
                        return;
                    }
                }
                if (!userModel.getPassword().equals(confirmPassword.getObject())) {
                    error("Passwords do not match!");
                    return;
                }
                String password = userModel.getPassword();
                if (!password.toUpperCase().startsWith(Crypt.__TYPE) && !password.toUpperCase().startsWith(MD5.__TYPE)) {
                    // This is a plain text password.
                    // Check length.
                    int minLength = GitBlit.self().settings().getInteger(Keys.realm.minPasswordLength, 5);
                    if (minLength < 4) {
                        minLength = 4;
                    }
                    if (password.trim().length() < minLength) {
                        error(MessageFormat.format("Password is too short. Minimum length is {0} characters.", minLength));
                        return;
                    }
                    
                    // Optionally encrypt/obfuscate the password.
                    String type = GitBlit.self().settings().getString(Keys.realm.passwordStorage, "md5");
                    if (type.equalsIgnoreCase("md5")) {
                        // store MD5 checksum of password
                        userModel.setPassword(MD5.digest(userModel.getPassword()));
                    } else if (type.equalsIgnoreCase("crypt")) {
                        // simple unix encryption
                        userModel.setPassword(Crypt.crypt(userModel.getUsername(), userModel.getPassword()));
                    }
                }
 
                Iterator<String> selectedRepositories = repositories.getSelectedChoices();
                List<String> repos = new ArrayList<String>();
                while (selectedRepositories.hasNext()) {
                    repos.add(selectedRepositories.next());
                }
                userModel.setRepositories(repos);
                try {
                    GitBlit.self().editUserModel(userModel, isCreate);
                } catch (GitBlitException e) {
                    error(e.getMessage());
                    return;
                }
                setRedirect(false);
                if (isCreate) {
                    // create another user
                    info(MessageFormat.format("New user {0} successfully created.", userModel.getUsername()));
                    setResponsePage(EditUserPage.class);
                } else {
                    // back to home
                    setResponsePage(RepositoriesPage.class);
                }
            }
        };
 
        // field names reflective match UserModel fields
        form.add(new TextField<String>("username").setEnabled(isCreate));
        PasswordTextField passwordField = new PasswordTextField("password");
        passwordField.setResetPassword(false);
        form.add(passwordField);
        PasswordTextField confirmPasswordField = new PasswordTextField("confirmPassword", confirmPassword);
        confirmPasswordField.setResetPassword(false);
        form.add(confirmPasswordField);
        form.add(new CheckBox("canAdmin"));
        form.add(repositories);
        add(form);
    }
}